CVE-2007-2704Weblogic Server vulnerability

3 documents3 sources
Severity
5.4MEDIUMNVD
EPSS
0.9%
top 24.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 16
Latest updateMay 1

Description

BEA WebLogic Server 9.0 through 9.2 allows remote attackers to cause a denial of service (SSL port unavailability) by accessing a half-closed SSL socket.

CVSS vector

AV:N/AC:H/C:N/I:N/A:CExploitability: 4.9 | Impact: 6.9

Affected Packages1 packages

NVDbea/weblogic_server9.0, 9.1, 9.2+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-x4mc-g97r-xrh2: BEA WebLogic Server 92022-05-01
CVEList
CVE-2007-2704: BEA WebLogic Server 92007-05-16
CVE-2007-2704 — BEA Weblogic Server vulnerability | cvebase